Re: GnuTLS | Unable to verify certificate chain on app.usmobile.com (#1771)

Read-only notification of GnuTLS library development activities <[email protected]>
Newsgroups gmane.comp.encryption.gpg.gnutls.devel
Message-ID <[email protected]>


František Krenželok commented: https://gitlab.com/gnutls/gnutls/-/issues/1771#note_2944248647


I don't think this is the case, afaik when server provides a intermediate that points to a distrusted root, the verification fails and no further attempts are made.
The reason this works on firefox, is that Mozilla added a cross-signed intermediate certificate directly to firefox that replaces the server on see(its quiet possible that for chrome it is the same situation). https://fkrenzel.cz/posts/2025-root-ca-mess.html#firefox

-- 
Reply to this email directly or view it on GitLab: https://gitlab.com/gnutls/gnutls/-/issues/1771#note_2944248647
You're receiving this email because of your account on gitlab.com.

_______________________________________________
Gnutls-devel mailing list
[email protected]
http://lists.gnupg.org/mailman/listinfo/gnutls-devel
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.